Skip to content

CVE-2026-21514

CVE

Threat entity extracted from intelligence sources

Frequency
10
occurrences
First Seen
February 10, 2026
Last Seen
March 17, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

CVE-2026-21514 is a security feature bypass vulnerability in Microsoft Word, disclosed on February 10, 2026. This flaw allows attackers to exploit nearly 14 million assets across seven Tier 1 countries, primarily in the United States. The vulnerability enables malware deployment without triggering u...

On February 10, 2026, Microsoft released a security update addressing 59 vulnerabilities, including six zero-day flaws that were actively exploited prior to the patch. The vulnerabilities affect various Microsoft products, with three of them being security feature bypass flaws, allowing attackers to...

A newly discovered vulnerability in Microsoft Word, tracked as CVE-2026-21514, allows attackers to bypass key security features using specially crafted documents. This flaw was published on February 10, 2026, and has been added to the CISA Known Exploited Vulnerabilities list due to active exploitat...

Microsoft has released updates to address a critical zero-day vulnerability in Windows Shell, tracked as CVE-2026-21510, which is actively being exploited. This security flaw allows remote attackers to bypass essential protection mechanisms, affecting millions of Windows users. The vulnerability was...

Public Exploits

Checking GitHub for proof-of-concept code…